Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-32047 | Dolibarr vulnerable to RCE via the computed field parameter |
Github GHSA |
GHSA-27hj-48r9-x2vx | Dolibarr vulnerable to RCE via the computed field parameter |
| Link | Providers |
|---|---|
| http://dolibarr.com |
|
| https://github.com/PhDg1410/Research |
|
Wed, 22 Oct 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dolibarr dolibarr Erp\/crm
|
|
| CPEs | cpe:2.3:a:dolibarr:dolibarr_erp\/crm:21.0.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Dolibarr dolibarr Erp\/crm
|
Thu, 02 Oct 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dolibarr
Dolibarr dolibarr Dolibarr dolibarr Erp/crm |
|
| Vendors & Products |
Dolibarr
Dolibarr dolibarr Dolibarr dolibarr Erp/crm |
Wed, 01 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
cvssV3_1
|
Wed, 01 Oct 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dolibarr ERP & CRM v21.0.1 were discovered to contain a remote code execution (RCE) vulnerability in the User module configuration via the computed field parameter. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-10-01T20:05:40.817Z
Reserved: 2025-08-17T00:00:00.000Z
Link: CVE-2025-56588
Updated: 2025-10-01T20:05:13.917Z
Status : Analyzed
Published: 2025-10-01T20:18:36.937
Modified: 2025-10-22T15:56:31.857
Link: CVE-2025-56588
No data.
OpenCVE Enrichment
Updated: 2025-10-02T08:45:53Z
EUVD
Github GHSA